1 Commits

Author SHA1 Message Date
Ryan Hendrickson
c5ba1a0b3a lib.escapeShellArg: handle paths
Path values should be copied into the store if they're going to be used
in a shell script. In other words, `"my-command ${arg}"` and
`"my-command ${lib.escapeShellArg arg}"` should always do the same thing
if `arg` is a path; it should not be the case that the first is safe and
the second results in an out-of-store reference.
2026-08-24 20:10:20 -04:00